Security
Emiliano <[email protected]>
| Newsgroups | gmane.comp.java.xwt.general |
|---|---|
| Message-ID | <[email protected]> |
Would it be possible/OK to have HTTP.java OK connects to the machine the xwar is loaded from automatically? That would make XWT slightly more robust in case of failure of xmlrpc.xwt.org when you're behind a proxy. If I had any idea where to start I'd submit a patch :/ On to https connects for xmlrpc/soap: what about accepting the connection for non-trusted CAs if the user has accepted them? Again, allowing connects over the same url that the xwar was loaded from should not affect security (more than it already has), and it'd allow small-time shops (like me when I'm not working in corporate mode, I do a couple of OS/FS projects) to operate without an expensive 'official' cert. Emile _______________________________________________ http://lists.xwt.org/listinfo/dev